Sr. Network Engineer Resume
Rosemont, IL
SUMMARY
- 8 years of experience in Confidential Networking, Security which includes designing, Deployment and providing network support, installation and analysis for a broad range of LAN / WAN protocols.
- Hands On experience Cisco IOS/IOS - XR/NX-OS, Juniper JUNOS for configuration & troubleshooting of routing protocols: MP-BGP, OSPF, LDP, EIGRP, RIP, BGP v4, MPLS.
- In-depth knowledge and hands-on experience in Tier II ISP Routing Policies, Network Architecture, IP Subnetting, VLSM, TCP/IP, NAT, DHCP, DNS, FT1 / T1 / FT3 / T3 SONET POS OCX / GigE circuits, Firewalls.
- Strong knowledge of TACACS+, RADIUS implementation in Access Control Network.
- Experience in Designing and assisting in deploying enterprise wide Network Security and High Availability Solutions for ASA.
- Extensive work experience with Cisco Routers, Cisco Switches, Load Balancers and Firewalls.
- Experience with configuring Nexus 2000 Fabric Extender (FEX) which acts as a remote line card (module) for the Nexus 5000.
- Experience working with Cisco Nexus 2148 Fabric Extender and Nexus 7010, 5000 series to provide a Flexible Access Solution for a datacenter access architecture
- Involved in troubleshooting of DNS, DHCP and other IP conflict problems.
- Configuring Virtual Chassis for Juniper switches EX-4200, Firewalls SRX-210
- Responsible for Check Point (Secure Platform R70) and Cisco ASA firewall administration across global networks.
- Experience working on Voice Based Networks.
- Experience in working with Cisco Nexus Switches and Virtual Port Channel configuration.
- Knowledge of implementing and troubleshooting complex layer 2 technologies such as VLAN Trunks, VTP, Ether channel, STP, RSTP and MST. Implementation of HSRP, VRRP for Default Gateway Redundancy.
- Experience in testing Cisco routers and switches in laboratory and deploy them on site production.
- Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500/PIX security appliance, Failover DMZ zoning & configuring VLANs/routing/NAT with the firewalls as per the design.
- Worked extensively on Cisco Firewalls, Cisco PIX (506E/515E/525/) & ASA 5500(5510/5540) Series
- Knowledge in preparing Technical Documentation and presentations using Microsoft VISIO/Office.
- Worked on MPLS while ensuring secure networking, improving the network performance by prioritizing network traffic and allocating bandwidth according to usage and service requirements.
- Worked on Multicast to use the bandwidth more effectively while reducing the load on the sender.
- Knowledge of WAN Optimization Technology, Riverbed.
- Configuring Cisco Wireless Controllers and AP’s.
- Configuring Cisco WAAS.
- Configuring the Network Admission Control (NAC).
- Excellent customer management/resolution, problem solving, debugging skills and capable of quickly learning, effectively analyzes results and implement and delivering solutions as an individual and as part of a team.
- Hands on Experience testing I Rules using Browser(IE), HTTP watch
TECHNICAL SKILLS
- Networking TechnologiesLAN/WAN Architecture, TCP/IP, Frame Relay, VPN, VLAN, VTP, NAT, PAT, STP, RSTP, PVST, MSTP
- Networking Hardware: Cisco Switches, Cisco Routers, ASA/Pix firewalls, Vmware, Ironport
- Routing Protocols: OSPF, IGRP, EIGRP, RIP, MPLS, IS-IS, BGP, Multicasting
- Security Technologies: PAP, CHAP, Cisco PIX, Blue Coat
- Network Monitoring: Cisco Works 2000, Wire Shark, HRPing
- Operating Systems: Windows 7, Vista, XP, 2000, LINUX, Cisco IOS, IOS XR
- Routers: CISCO 2600, 2800,3600,3800,7200, Juniper M & T Series, Cisco CRS-1, CRS -3, GSR
- Load Balancers: Cisco CSM, F5 Networks (BIG-IP)
- Capacity & performance: IXIA, Spirent, Cisco works, IPerf, IXChariot
- Switches: CISCO 2900, 3500,4500,5000,6500, Nexus 7k,5k,2k
- Switching: LAN, VTP, STP, PVST+, RPVST+, Inter VLAN routing& Multi-layer switch, ether channels.
- Gateway Redundancy: HSRP and GLBP
- Firewalls: juniper net screen (500/5200), Juniper SRX (650/3600), Pix(525/535), ASA(5520/5550/5580), McAfee Web Gateway
- AAA Architecture: TACACS+, RADIUS, Cisco ACS
- Features & Services: IOS and Features, HSRP, GLBP, IPAM IRDP, NAT, SNMP, SYSLOG, NTP, DHCP, CDP, DNS, TFTP and FTP Management, Open Stack, IVR’s, HLD and LLD documents, Dell equal logics
PROFESSIONAL EXPERIENCE
Confidential, Rosemont, IL
Sr. Network Engineer
Responsibilities:
- Configuring Static, IGRP, EIGRP, BGP and OSPF Routing Protocols on Cisco1600, 2600, 2800, 3600, 7300 series Routers.
- Responsible for entire company network infrastructure that includes Cisco Switches, Routers, Firewalls, Access Points, Servers and PBX.
- Configured Site to Site IPsec VPN tunnels to peer with different clients and each of client having different specifications of Phase 1 and Phase 2 policies using Cisco ASA 5500 series firewalls.
- Configured Easy VPN server and SSL VPN to facilitate various employees’ access internal servers and resources with access restrictions.
- Building the VPN tunnel and VPN encryption.
- Enabled STP attack mitigation (BPDU Guard, Root Guard), using MD5 authentication for VTP, disabling all unused ports and putting them in unused VLAN.
- Configured various LAN switches such as CISCO CAT 2900, 3550, 4500, 6509 switches and Access layer switches such as Cisco 4510, 4948, 4507 switches for VLAN, Fast Ether Channel configuration.
- Implemented VPC, VDC on Nexus Switches and also configured FEX.
- Implementation of Access Lists for allowing/blocking desired traffic.
- Configured inside ACL, outside ACL, inside/outside interfaces.
- Configuring VLANs/routing/NATing with the firewalls as per the network design.
- Configured EBGP load balancing and ensured stability of BGP peering interfaces.
- Worked on Route-Reflectors to troubleshoot BGP issues related to customer route prefixes also route filtering using Route-maps.
- Deploying and decommission of VLANs on core ASR 9K, Nexus 7K, 5K and its downstream devices
- Configuration and troubleshooting of CSM, integration with ASA devices.
- Worked extensively in Configuring, Monitoring and Troubleshooting Cisco ASA 5500.
- Provided proactive threat defense with ASA that stops attacks before they spread through the network.
Environment: Cisco2948/3560/4500/3560/3750/3550/3500/2960/6500 Switches and Cisco 3640/1200/7200/3845/3600/2800 routers, Cisco 1200 Aironet Access Points, Cisco Nexus 7K/5K/2K, Cisco ASA 500, Checkpoint, windows server 2003/2008: F5 BIGIP LTM, RIP, OSPF, BGP, EIGRP, LAN, WAN, VPN, HSRP.
Confidential, Birmingham AL
Sr. Network Engineer
Responsibilities:
- Responsible for implementing, supporting, and maintaining 24x7 network services.
- Coordinated efforts with Engineer’s to ensure all network devices conformed to defined network standards.
- Configured and troubleshooting HSRP, BGP, OSPF, EIGRP, MPLS WAN, QoS and Route Maps.
- Configured and maintaining Cisco 7200, 4400, 5000 and 6500 platforms.
- Troubleshoot connectivity issues involving VLAN’s, OSPF, QoS etc.
- Support, monitor and manage the IP network.
- Experience with configuring Nexus 5000 Fabric Extender (FEX) which acts as a remote line card (module) for the Nexus 7000.
- Performance monitoring of various applications and web servers to maintain quality of service and network stability.
- Maintained core switches, creating VLAN’s and configuring VTP.
- Designed IP Addressing schemes, VLAN tables and Switchport assignments, Trunking and Ether-channel implementation.
- Experience with F5 load balancers and Cisco load balancers (CSM, ACE and GSS).
- Gained hands on experience with VLSM, STP, VTP, VLAN Trunking.
- Installed and set up Cisco routers and switches according to deployment plans.
- Applied access lists and NAT configurations based on implementation guidelines.
- Managed and developed network projects designed to strengthen network continuity and deploy security elements in an attempt to meet and exceed contract requirements, including system analysis and troubleshooting.
- Change management, monitoring network performance with network tools.
- IP Distribution for existing devices and new devices as they were added.
- Preformed maintenance on equipment as necessary, performing device upgrades, modification of configurations, password changes and diagnostic testing.
- Deployed a large-scale HSRP solution to improve the uptime of collocation customers, in an event where a core router became unreachable.
Environment: Cisco4400/7200/3900/7600 Routers, Cisco3650, 6800/6500/3560 Switches, Nexus 7k/5k RIP, OSPF, BGP, EIGRP, LAN, WAN, CISCO ASA 5500, HSRP, VRRP, GLBP, VLAN, QoS, Wireshark, Solarwinds.
Confidential, Conway Arkansas
Network Analyst
Responsibilities:
- Working with Network Design and implementation teams on various projects across related to Brach, Campus and Data Center.
- Designing and deployment of Partner IPSEC VPN tunnels.
- Involved in the configuration & troubleshooting of routing protocols: MP-BGP, OSPF, LDP, EIGRP, RIP, BGP v4. Configured IP access filter policies.
- Deploying and decommissioning Cisco switches and their respective software upgrades.
- Converting CatOS to Cisco IOS Config Conversion on distribution layer switches
- Experience with manipulating various BGP attributes such as Local Preference, MED, Extended Communities, Route-Reflector clusters, Route-maps and route policy implementation.
- Configuration and troubleshooting of Site-to-Site and Client to Site VPN’s on Cisco PIX/ASA Firewalls and IOS Routers.
- To secure configurations of load balancing in F5, SSL/VPN connections, Troubleshooting CISCO ASA firewalls, and related network security measures
- NAT and access rules on PIX/ASA Firewall
- Failover on PIX/ASA Firewall (Active/Standby & Active/Active)
- Software upgrade(PIX/ASA Firewalls)
- Experience configuring Virtual Device Context in Nexus 7010
- Experience in Configuring, upgrading and verifying the NX-OS operation system.
- Performed OSPF, BGP, DHCP Profile, HSRP, IPV6, Bundle Ethernet implementation on ASR 9K redundant pair.
Environment: Cisco 2948/3560/4500/3560/3750/3550/3500/2960 6500 switches and Cisco 3640/12000 /7200/3845/3600/2800 routers, Cisco Nexus 7K/5K, Cisco ASA5510, Checkpoint, Aruba Controllers 6000, 3600, 3400,650: windows server 2003/2008: F5 BIGIP LTM.
Confidential
Network Engineer
Responsibilities:
- Troubleshoot traffic passing managed firewalls via logs and packet captures
- Configured and resolved various OSPF issues in an OSPF multi area environment.
- Managed fast Layer 3 switched/routed LAN/WAN infrastructure as a part of Network team. The LAN consisted of Cisco campus model of Cisco 3550 at access layer, Cisco 6513 at distribution/core layer.
- Worked with telecom vendors in regards to network fault isolation.
- Hands-on experience with WAN (ATM/Frame Relay), Routers, Switches, TCP/IP, Routing Protocols (BGP/OSPF), and IP addressing.
- Configured CIDR IP RIP, PPP, BGP and OSPF routing.
- Involved in the configuration & troubleshooting of routing protocols: MP-BGP, OSPF, MPLS, LDP, EIGRP, RIP, BGP v4. Configured IP access filter policies.
- Management and Deployment on Checkpoint Firewall.
- Use Checkpoint to establish Point-to-Point tunnels.
Environment: Net Flow, TACACS, EIGRP, RIP, OSPF, BGP, VPN, MPLS, CSM, SUP720, Ether Channels, Cisco 7200/3845/3600/2800 routers, Fluke and Sniffer, Cisco 6509/ 3750/3550/3500/2950 switches, Checkpoint firewalls (SPLAT).